IIA IIA-CIA-Part2 Practice Test - Questions Answers, Page 2

List of questions
Question 11

An internal auditor determines that certain information from the engagement results is not appropriate for disclosure to all report recipients because it is privileged. In this situation, which of the following actions would be most appropriate?
Question 12

For which of the following fraud engagement activities would it be most appropriate to involve a forensic auditor?
Question 13

According to IIA guidance,which of the following is true about the supervising internal auditor's review notes?
* They are discussed with management prior to finalizing the audit.
* They may be discarded after working papers are amended as appropriate.
* They are created by the auditor to support her fieldwork in case of questions.
* They are not required to support observations issued in the audit report.
Question 14

During a fraud interview, it was discovered that unquestioned authority enabled a vice president to steal funds from the organization. Which of the following best describes this condition?
In the context of the fraud triangle, the condition where a vice president's unquestioned authority enabled the theft of funds is best described as 'opportunity.' Opportunity refers to the circumstances that allow fraud to occur, including the ability to override controls or exploit a lack of oversight. This is one of the three elements of the fraud triangle, which also includes rationalization and pressure.
Reference: IIA Practice Guide -- Fraud and Internal Audit, COSO Fraud Risk Management Guide
Question 15

According to IIA guidance, which of the following are appropriate actions for the chief audit executive regarding management's response to audit recommendations?
According to IIA guidance, the chief audit executive (CAE) is responsible for evaluating and verifying management's response to audit recommendations. The CAE must also determine the need and scope for additional work based on the adequacy and timeliness of management's corrective actions. This ensures that the audit recommendations are effectively implemented and that any residual risks are appropriately managed.
Reference: IIA Standard 2500 -- Monitoring Progress, IIA Practice Advisory 2500.A1-1
Question 16

According to the Standards, which of the following is leastimportant in determining the adequacy of an annual audit plan?
According to the IIA Standards, the primary factors in determining the adequacy of an annual audit plan include sufficiency, appropriateness, and effective deployment of resources. These elements ensure that the internal audit activity can effectively cover key risk areas, provide relevant assurance, and utilize resources efficiently. While cost-effectiveness is important, it is considered less critical compared to ensuring the audit plan is comprehensive and appropriately targeted.
Reference: = IIA Standard 2010 - Planning.
Question 17

The newly appointed chief audit executive (CAE) of a large multinational corporation, with seasoned internal audit departments located around the world, is reviewing responsibilities for engagement reports. According to IIA guidance, which of the following statements is true?
According to IIA guidance, the CAE has the ultimate responsibility for the internal audit activity but may delegate tasks such as reviewing, approving, and signing engagement reports to qualified internal audit staff. This delegation helps in managing workload and leveraging expertise within the team. However, the CAE should still periodically review the reports to maintain oversight and ensure quality.
Reference: = IIA Standard 2060 - Reporting to Senior Management and the Board, and Standard 2400 - Communicating Results.
Question 18

The internal audit activity (IAA) wants to measure its performance related to the quality of audit recommendations. Which of the following client survey questions would best help the IAA meet this objective?
To measure the performance related to the quality of audit recommendations, the internal audit activity should focus on whether the audit findings were relevant and useful to management. This directly assesses the practical impact and value of the audit recommendations, ensuring that they address significant issues and assist management in improving operations and controls.
Reference: = IIA's Practice Guide on Measuring Internal Audit Effectiveness and Efficiency.
Question 19

When forming an opinion on the adequacy of management's systems of internal control, which of the following findings would provide the most reliable assurance to the chief audit executive?
* During an audit of the hiring process in a law firm, it was discovered that potential employees' credentials were not always confirmed sufficiently. This process remained unchanged at the following audit.
* During an audit of the accounts payable department, auditors calculated that two percent of accounts were paid past due. This condition persisted at a follow up audit.
* During an audit of the vehicle fleet of a rental agency, it was determined that at any given time, eight percent of the vehicles were not operational. During the next audit, this figure had increased.
* During an audit of the cash handling process in a casino, internal audit discovered control deficiencies in the transfer process between the slot machines and the cash counting are a. It was corrected immediately.
The most reliable assurance comes from findings that demonstrate both the identification of issues and the effectiveness of corrective actions. In the provided scenarios, the accounts payable audit (2) and the cash handling process audit (4) illustrate instances where issues were identified, and actions were either needed (2) or taken promptly (4), thus providing a clear basis for forming an opinion on internal control adequacy.
Reference: = IIA Standard 2410 - Criteria for Communicating and Standard 2500 - Monitoring Progress.
Question 20

An internal auditor and engagement client are deadlocked over the auditor's differing opinion with management on the adequacy of access controls for a major system. Which of the following strategies would be the most helpful in resolving this dispute?
When there is a deadlock between the internal auditor and management over a significant issue such as access controls, escalating the issue to senior management is the most effective strategy. This approach ensures that the disagreement is addressed at a higher organizational level, where a decision can be made that aligns with the organization's risk tolerance and priorities.
Reference: = IIA Standard 2600 - Resolution of Senior Management's Acceptance of Risks.
Question